Hi Jakub! On Fri, Oct 29, 2010 at 11:43 PM, Jakub Wilk <jw...@debian.org> wrote: > ImageMagick reads several configuration files[0] from the current working > directory. Unfortunately, this allows local attackers to execute arbitrary > code if ImageMagick is run from an untrusted directory.
I have confirmed it here and forwarded upstream. Thank you! Best regards, Nelson -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org